quassel: SQL injection
Package(s): | quassel | CVE #(s): | CVE-2013-4422 | ||||||||||||||||
Created: | October 18, 2013 | Updated: | February 26, 2014 | ||||||||||||||||
Description: | From the Mageia advisory: Quassel IRC before 0.9.1 is vulnerable to SQL injection if used with Qt 4.8.5, due to a change in Qt's postgres driver, allowing other IRC users to trick the Quassel core into executing SQL queries. | ||||||||||||||||||
Alerts: |
|